Michael Niedermayer
f94628a35f
doc/git-howto.texi: Document commit signing
...
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
(cherry picked from commit ced0dc807e
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-10-21 22:19:37 +02:00
Michael Niedermayer
f9aa66bc83
libavcodec/8bps: Check that line lengths fit within the buffer
...
Fixes: Timeout
Fixes: undefined pointer arithmetic
Fixes: 50330/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_EIGHTBPS_fuzzer-5436287485607936
Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
(cherry picked from commit 2316d5ec1a
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-10-21 22:19:37 +02:00
Michael Niedermayer
65831041f5
libavformat/iff: Check for overflow in body_end calculation
...
Fixes: signed integer overflow: -6322983228386819992 - 5557477266266529857 cannot be represented in type 'long'
Fixes: 50112/clusterfuzz-testcase-minimized-ffmpeg_dem_IFF_fuzzer-6329186221948928
Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
(cherry picked from commit bcb4690304
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-10-21 22:19:37 +02:00
Michael Niedermayer
c08f64df47
avcodec/h263dec: Sanity check against minimal I/P frame size
...
Fixes: Timeout
Fixes: 49718/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_MPEG4_fuzzer-4874987894341632
Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
(cherry picked from commit ca4ff9c21c
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-10-21 22:19:37 +02:00
Michael Niedermayer
dc6f7e6bf7
MAINTAINERS: Add ED25519 key for signing my commits in the future
...
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
(cherry picked from commit 05225180be
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-10-21 22:19:37 +02:00
Michael Niedermayer
05e0eb05ae
avcodec/hevc_filter: copy_CTB() only within width&height
...
Fixes: out of array access
Fixes: 49271/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_HEVC_fuzzer-5424984922652672
Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
(cherry picked from commit 009ef35d38
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-10-21 22:19:37 +02:00
Michael Niedermayer
2278ce5035
avformat/flvdec: Check for EOF in index reading
...
Fixes: Timeout
Fixes: 47992/clusterfuzz-testcase-minimized-ffmpeg_dem_LIVE_FLV_fuzzer-6020443879899136
Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
(cherry picked from commit ceff5d7b74
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-10-21 22:19:37 +02:00
Michael Niedermayer
b0700a1314
avformat/nutdec: Check get_packetheader() in mainheader
...
Fixes; Timeout
Fixes: 48794/clusterfuzz-testcase-minimized-ffmpeg_dem_NUT_fuzzer-6524604713140224
Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
(cherry picked from commit b5de084aa6
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-10-21 22:19:37 +02:00
Michael Niedermayer
01705cc062
avformat/asfdec_f: Use 64bit for packet start time
...
Fixes: signed integer overflow: 2147483647 + 32 cannot be represented in type 'int'
Fixes: 49014/clusterfuzz-testcase-minimized-ffmpeg_dem_ASF_fuzzer-6314973315334144
Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
(cherry picked from commit 8ed78486fc
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-10-21 22:19:37 +02:00
Michael Niedermayer
6ca1a2ac23
avcodec/lagarith: Check dst/src in zero run code
...
Fixes: out of array access
Fixes: 48799/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_LAGARITH_fuzzer-4764457825337344
Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
Reviewed-by: Paul B Mahol <onemda@gmail.com >
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
(cherry picked from commit 9450f75974
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-10-21 22:19:37 +02:00
Michael Niedermayer
7e4e122ce2
avcodec/h264dec: Skip late SEI
...
Fixes: Race condition
Fixes: clusterfuzz-testcase-minimized-mediasource_MP2T_AVC_pipeline_integration_fuzzer-6282675434094592
Found-by: google ClusterFuzz
Tested-by: Dan Sanders <sandersd@google.com >
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
(cherry picked from commit f7dd408d64
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-10-21 22:19:37 +02:00
Michael Niedermayer
cc77089393
avcodec/sbrdsp_fixed: Fix integer overflows in sbr_qmf_deint_neg_c()
...
Fixes: signed integer overflow: 2147483645 + 16 cannot be represented in type 'int'
Fixes: 46993/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_AAC_FIXED_fuzzer-4759025234870272
Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
(cherry picked from commit 1537f40516
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-10-21 22:19:37 +02:00
Michael Niedermayer
eedbc82ea9
avformat/rtsp: break on unknown protocols
...
This function needs more cleanup and it lacks error handling
Fixes: use of uninitialized memory
Fixes: CID700776
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
(cherry picked from commit 73c0fd27c5
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-10-21 22:19:37 +02:00
Michael Niedermayer
2e8529d282
avcodec/hevcdsp_template: stay within tables in sao_band_filter()
...
Fixes: out of array read
Fixes: 47875/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_HEVC_fuzzer-5719393113341952
Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
(cherry picked from commit 9c5250a561
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-10-21 22:19:37 +02:00
Michael Niedermayer
d81081d22a
avcodec/qpeldsp: copy less for the mc0x cases
...
Fixes: out of array access
Fixes: 47936/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_MPEG4_fuzzer-5745039940124672
Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
(cherry picked from commit e690d4edf5
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-10-21 22:19:37 +02:00
Michael Niedermayer
0f49789f7c
avcodec/ffv1dec: Limit golomb rice coded slices to width 8M
...
This limit is possibly not reachable due to other restrictions on buffers but
the decoder run table is too small beyond this, so explicitly check for it.
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
(cherry picked from commit b4431399ec
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-10-21 22:19:37 +02:00
Michael Niedermayer
3df3d2cfe7
avformat/iff: simplify duration calculation
...
Fixes: signed integer overflow: 315680096256 * 134215943 cannot be represented in type 'long long'
Fixes: 48713/clusterfuzz-testcase-minimized-ffmpeg_dem_IFF_fuzzer-5886272312311808
Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
(cherry picked from commit 0740641e93
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-10-21 22:19:37 +02:00
Michael Niedermayer
f3ac9f6f69
avcodec/wnv1: Check for width =1
...
The decoder only outputs pixels for width >1 images, fail early
Fixes: Timeout
Fixes: 48298/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_WNV1_fuzzer-6198626319204352
Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
(cherry picked from commit d98d5a436a
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-10-21 22:19:37 +02:00
Michael Niedermayer
4b3ff3ce8a
avformat/sctp: close socket on errors
...
This is untested as i have no testcase
Fixes: CID1302709
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
(cherry picked from commit c9a2996544
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-10-21 22:19:37 +02:00
Michael Niedermayer
bd7fd6a6d3
avcodec/aasc: Fix indention
...
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
(cherry picked from commit af2ed09220
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-10-21 22:19:37 +02:00
Michael Niedermayer
5c3262e82b
avcodec/qdrw: adjust max colors to array size
...
Fixes: out of array access
Fixes: 48429/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_QDRAW_fuzzer-4608329791438848
Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
Reviewed-by: Paul B Mahol <onemda@gmail.com >
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
(cherry picked from commit cd847f86d3
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-10-21 22:19:37 +02:00
Michael Niedermayer
8618061a4f
avcodec/alacdsp: Make intermediates unsigned
...
Fixes: signed integer overflow: -14914387 + -2147418648 cannot be represented in type 'int'
Fixes: 46464/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_ALAC_fuzzer-474307197311385
Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
(cherry picked from commit 8709f4c10a
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-10-21 22:19:37 +02:00
Michael Niedermayer
97f54cb258
avformat/aiffdec: cleanup size handling for extreem cases
...
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
(cherry picked from commit c6f1e48b86
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-10-21 22:19:37 +02:00
Michael Niedermayer
fc54bf1532
avcodec/jpeglsdec: fix end check for xfrm
...
Fixes: out of array access
Fixes: 47871/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_AMV_fuzzer-5646305956855808
Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
(cherry picked from commit 6a82412bf3
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-10-21 22:19:37 +02:00
Michael Niedermayer
e72660db30
avcodec/cdgraphics: limit scrolling to the line
...
Fixes: out of array access
Fixes: 47877/clusterfuzz-testcase-minimized-ffmpeg_AV_CODEC_ID_CDGRAPHICS_fuzzer-5690504626438144
Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
(cherry picked from commit b7e30a13d4
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-10-21 22:19:37 +02:00
Michael Niedermayer
e631e97b64
avformat/aiffdec: avoid integer overflow in get_meta()
...
Fixes: signed integer overflow: 2147483647 + 1 cannot be represented in type 'int'
Fixes: 45891/clusterfuzz-testcase-minimized-ffmpeg_dem_AIFF_fuzzer-6159183893889024
Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
(cherry picked from commit 6a02de2127
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-10-21 22:19:37 +02:00
Michael Niedermayer
1236e18a00
avformat/ape: more bits in size for less overflows
...
Fixes: signed integer overflow: 2147483647 + 3 cannot be represented in type 'int'
Fixes: 46184/clusterfuzz-testcase-minimized-ffmpeg_IO_DEMUXER_fuzzer-4678059519770624
Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
(cherry picked from commit e5f6707a7b
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-10-21 22:19:37 +02:00
Michael Niedermayer
0bb61d2744
avformat/bfi: Check offsets better
...
Fixes: signed integer overflow: -2145378272 - 538976288 cannot be represented in type 'int'
Fixes: 45690/clusterfuzz-testcase-minimized-ffmpeg_IO_DEMUXER_fuzzer-5015496544616448
Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
(cherry picked from commit 35dc93ab44
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-10-21 22:19:37 +02:00
Michael Niedermayer
c756e27a70
avformat/asfdec_f: Check packet_frag_timestamp
...
Fixes: signed integer overflow: -9223372036854775808 - 4607 cannot be represented in type 'long'
Fixes: 45685/clusterfuzz-testcase-minimized-ffmpeg_IO_DEMUXER_fuzzer-5280102802391040
Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
(cherry picked from commit ffc8772150
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-10-21 22:19:37 +02:00
Michael Niedermayer
065b3e6009
avcodec/texturedspenc: Fix indexing in color distribution determination
...
Fixes CID1396405
MSE and PSNR is slightly improved, and some noticable corruptions disappear as
well.
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
Signed-off-by: Marton Balint <cus@passwd.hu >
(cherry picked from commit ade36d61de
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-10-21 22:19:37 +02:00
Michael Niedermayer
d03eb6c889
avformat/act: Check ff_get_wav_header() for failure
...
Fixes: missing error check
Fixes: CID717495
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
(cherry picked from commit 5982da87e3
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-10-21 22:19:37 +02:00
Michael Niedermayer
23ce7312cc
avfilter/vsrc_mandelbrot: Check for malloc failure
...
Reviewed-by: Paul B Mahol <onemda@gmail.com >
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
(cherry picked from commit fbd22504c4
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-10-21 22:19:37 +02:00
Michael Niedermayer
1906b8b1e4
avformat/genh: Check sample rate
...
Fixes: signed integer overflow: -2515507630940093440 * 4 cannot be represented in type 'long'
Fixes: 46318/clusterfuzz-testcase-minimized-ffmpeg_dem_GENH_fuzzer-5009637474172928
Found-by: continuous fuzzing process https://github.com/google/oss-fuzz/tree/master/projects/ffmpeg
Reviewed-by: Paul B Mahol <onemda@gmail.com >
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
(cherry picked from commit a3d790f197
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-06-14 16:53:26 +02:00
Michael Niedermayer
665f4908a8
Update for FFmpeg 3.2.18
...
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
n3.2.18
2022-05-11 02:16:45 +02:00
Paul B Mahol
64d2e0b200
avfilter/vf_colorspace: fix memmory leaks
...
Fixes #8303
(cherry picked from commit fddef964e8
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-05-04 19:57:11 +02:00
Andreas Rheinhardt
bbc9751da6
avcodec/ac3enc: Fix memleak
...
Fixes ticket #8294 .
Signed-off-by: Andreas Rheinhardt <andreas.rheinhardt@gmail.com >
(cherry picked from commit 097c917c14
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-05-04 19:54:57 +02:00
James Almer
c7c2f4975b
avformat/nutenc: don't allocate a dynamic AVIOContext if no index is going to be written
...
Fixes ticket #8295
Signed-off-by: James Almer <jamrial@gmail.com >
(cherry picked from commit 1d479300cb
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-05-04 19:38:44 +02:00
Paul B Mahol
5b4100cbae
avfilter/vf_random: fix memory leaks
...
Fixes #8296
(cherry picked from commit 3488e0977c
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-05-04 19:35:02 +02:00
Paul B Mahol
7004a214d0
avfilter/vf_bwdif: fix heap-buffer overflow
...
Fixes #8261
(cherry picked from commit 8c3166e1c3
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-05-04 19:32:01 +02:00
Andreas Rheinhardt
ee92ee3b5a
fftools/ffmpeg_opt: Fix leak of options when parsing options fails
...
Fixes #8094 .
Signed-off-by: Andreas Rheinhardt <andreas.rheinhardt@gmail.com >
Reviewed-by: Paul B Mahol <onemda@gmail.com >
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
(cherry picked from commit 21265f42ec
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-05-04 19:28:24 +02:00
Paul B Mahol
e998d8c90d
avfilter/vf_edgedetect: fix heap-buffer overflow
...
Fixes #8275
(cherry picked from commit de598f82f8
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-05-04 19:25:32 +02:00
Paul B Mahol
fd8b08ebbb
avfilter/vf_w3fdif: deny processing small videos
...
Fixes #8243
(cherry picked from commit 0e68e8c93f
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-05-04 19:23:51 +02:00
Paul B Mahol
ff93d6f710
avfilter/vf_avgblur: fix heap-buffer overflow
...
Fixes #8274
(cherry picked from commit f069a9c2a6
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-05-04 18:49:27 +02:00
Paul B Mahol
a9b8eda773
avfilter/af_tremolo: fix heap-buffer overflow
...
Fixes #8317
(cherry picked from commit 58bb9d3a3a
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-05-04 18:47:06 +02:00
Paul B Mahol
7cab59a34f
avfilter/vf_edgedetect: check if height is big enough
...
Fixes #8260
(cherry picked from commit ccf4ab8c9a
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-05-04 18:42:56 +02:00
Paul B Mahol
ab0b268bb7
avfilter/vf_bitplanenoise: fix overreads
...
Fixes #8244
(cherry picked from commit 0b56723874
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-05-04 18:40:20 +02:00
Paul B Mahol
07bc7b2c07
avfilter/vf_fieldorder: fix heap-buffer overflow
...
Fixes #8264
(cherry picked from commit 07050d7bdc
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-05-04 18:37:34 +02:00
Paul B Mahol
0744d7176a
avfilter/vf_fieldmatch: fix heap-buffer overflow
...
Also fix use of uninitialized values.
Fixes #8239
(cherry picked from commit ce5274c138
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-05-04 18:34:53 +02:00
James Almer
a95d2099b8
aformat/movenc: add missing padding to output track extradata
...
Fixes ticket #8183 .
Tested-by: Thierry Foucu <tfoucu@gmail.com >
Signed-off-by: James Almer <jamrial@gmail.com >
(cherry picked from commit 58aa0ed8f1
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-05-04 18:21:01 +02:00
Paul B Mahol
322b066d65
avcodec/pngenc: remove monowhite from apng formats
...
Monowhite pixel format is not supported, and it does not make sense
to add support for it.
Fixes #7989
(cherry picked from commit 5d9f44da46
)
Signed-off-by: Michael Niedermayer <michael@niedermayer.cc >
2022-05-04 18:17:48 +02:00